Hacker Newsnew | past | comments | ask | show | jobs | submit | quyleanh's commentslogin

> Read our story and watch the demos: https://calif.io/research/weworm.

> The New York Times also spent time following our work and published their story today: https://archive.is/arHsF


It's all about personal perspective, so just find something matches with your price/performance requirement. With my personal experience, I can always recommend my friend to by ThinkPad, new or secondhand are fine.

> We also tested Astra on SRE-Bench [15], a benchmark that measures whether models can reverse engineer software binaries to understand its core logic without access to raw source code. Astra solved 88.0% of tasks in a single attempt and 99.2% within four attempts, compared with 55.9% and 68.7% for GPT‑5.6 Sol, respectively.

So the closed source application should open its source in near future?

[15] https://arxiv.org/abs/2608.11469v1


Not if OpenAI considers reverse engineering an offensive cybersecurity skill.

Surprisingly, I've had really good luck with reverse engineering on frontier models (without being part of CVP or similar). It's more the exploit development/PoC that it locks up on, which, as I use `pi`, I just switch the model to Kimi K3 to finish up making the PoC.

Ironically, due to the stringent guardrails on American models that exist to avoid giving adversaries a leg-up in cybersecurity, I end up feeding dozens of 0days straight to the CCP lol


I do RE mostly, and they do lock up for me. But what works for me is: warm up context with non-RE things with American models > switch to GLM 5.3 with actual request, let it fill context with some RE work > switch to American > switch back to GLM 5.3 and keep switching back and forth if anything gets flagged.

Solves the guardrail problem - check Feeds China data to US - check Feeds US data to China - check

But I think OpenAI has caught up with this, and it's why they're pushing so many things server-side and encrypt it (subagent messages, compaction, new context history thing).


I was listening to the Lex Fridman / DHH podcast last night [0], and DHH was saying that this is a new era for open source software. I'd agree, and also extend it open hardware.

Recently I've seen quite a few posts from people using AI to reverse engineer the Bluetooth protocol or such on devices that need a proprietary app. The same thing for firmware is surely coming, which is great as you can get lots of fun hardware from China, but it often has shitty firmware. Once that becomes the norm there's no reason not to make it open in the first place.

[0] - https://open.spotify.com/episode/45lhw2Adbrsw0xSCOgIeg3?si=r...


Open source is about freedom, not just about being able to read the source code.

How is that relevant?

This thread seems to confuse source-available and open source

Not really? Nobody is talking about source-available code with a restrictive license. People are talking about having LLMs write up protocols and libraries and firmwares from scratch and making those freely available, as in open source.

It’s relied on librespot so cannot work with free account.

Update: it's back



Totally agree. People’re saying Microsoft this, Microsoft that with their Microsoft hate, but they ignore the fact that AI trend making GitHub worse, and GitHub is trying to fix.


Tbh, I love this flow. They truely think for users, all users not just advanced users. Unlike Apple, Apple just think for its ecosystem, its money.

  How the advanced flow works for users

  Enable developer mode in system settings: Activating this is simple. This prevents accidental triggers or "one-tap" bypasses often used in high-pressure scams.
  Confirm you aren't being coached: There is a quick check to make sure that no one is talking you into turning off your security. While power users know how to vet apps, scammers often pressure victims into disabling protections.
  Restart your phone and reauthenticate: This cuts off any remote access or active phone calls a scammer might be using to watch what you’re doing.
  Come back after the protective waiting period and verify: There is a one-time, one-day wait and then you can confirm that this is really you who’s making this change with our biometric authentication (fingerprint or face unlock) or device PIN. Scammers rely on manufactured urgency, so this breaks their spell and gives you time to think.
  Install apps: Once you confirm you understand the risks, you’re all set to install apps from unverified developers, with the option of enabling for 7 days or indefinitely. For safety, you’ll still see a warning that the app is from an unverified developer, but you can just tap “Install Anyway.”


Do you also like Dictators that decide and think for you?


Sorry, it's because they are busy with marketing liquid glass theme.


They said [1] in article but put iPhone 18 chip process just for clickbait… Disappointed.

[1] No details have been shared on the nature of the information obtained. It is likely that it relates to the 2nm process in general rather than anything specific to Apple’s A20 chip.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: